Linux Kernel contains a flaw that may allow a local denial of service. The issue is triggered when the copy_cred() function in cred.c fails to properly clear flags in replacement_session_keyring, and will result in loss of availability for the system.
Classification
Location:
Local Access Required
Attack Type:
Denial of Service
Impact:
Loss of Availability
Solution:
Patch / RCS
Exploit:
Exploit Unknown
Disclosure:
Vendor Verified
OSVDB:
Authentication Required
Solution
Currently, there are no known workarounds or upgrades to correct this issue. However, Red Hat has released a patch to address this vulnerability. Check the Red Hat Security Advisory in the references section.